Topic: defender recommendations

  • Fake SSA Emails Fuel Venomous#Helper Phishing Attacks

    Fake SSA Emails Fuel Venomous#Helper Phishing Attacks

    A phishing campaign tracked as Venomous#Helper has breached over 80 organizations since April 2025 by using legitimate Remote Monitoring and Management (RMM) software to install persistent backdoors. The attack chain impersonates the US Social Security Administration via email, directing victims ...

    Read More »
  • Gootloader Evades Detection With 1,000-Part ZIP Archives

    Gootloader Evades Detection With 1,000-Part ZIP Archives

    Gootloader malware now uses massively concatenated ZIP archives, a technique designed to crash common analysis tools and evade detection by exploiting parser vulnerabilities. The attack employs multiple evasion layers, including corrupted archive structures and unique file generation per download...

    Read More »